EMC Legato NetWorker, Solstice Backup 6.0 and 6.1, and StorEdge Enterprise Backup 6.0 through 7.2 do not properly verify authentication tokens, which allows remote attackers to gain privileges by modifying an authentication token.
References
| Link | Resource |
|---|---|
| http://sunsolve.sun.com/search/document.do?assetkey=1-26-101886-1 | Patch Vendor Advisory |
| http://www.kb.cert.org/vuls/id/407641 | Patch Third Party Advisory US Government Resource |
| http://www.securityfocus.com/bid/14582 | Patch Vendor Advisory |
| http://www.osvdb.org/18801 | |
| http://securitytracker.com/id?1014713 | Patch |
| http://secunia.com/advisories/16470 | Vendor Advisory |
| http://secunia.com/advisories/16464 | Patch Vendor Advisory |
| http://www.legato.com/support/websupport/product_alerts/081605_NW_token_authentication.htm | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/21892 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-08-23 04:00
Updated : 2017-07-11 01:32
NVD link : CVE-2005-0358
Mitre link : CVE-2005-0358
JSON object : View
Products Affected
sun
- storedge_enterprise_backup_software
- solstice_backup
emc
- legato_networker
CWE
